NetExec SMB Auth Test
Test SMB authentication with various credential types
- Tool
- nxc
- Category
- Authentication / Credential Testing
- Platform
- linux
- Requires
- password
- Protocols
- SMB
Syntax
Angle-bracket tokens are placeholders — replace them with your target's values, or open this command in the app to fill them in and copy the result.
nxc smb '<ip>' -u '<user>' -p '<password>' -d '<domain>'
Credential variants
The same attack using a different authentication material.
NTLM Hash requires NTLM hash
nxc smb '<ip>' -u '<user>' -H '<hash>' -d '<domain>'
Kerberos Ticket requires Kerberos ticket
nxc smb '<ip>' --use-kcache -d '<domain>'
Local Auth requires password
nxc smb '<ip>' -u '<user>' -p '<password>' --local-auth
Examples
nxc smb '192.168.1.100' -u 'administrator' -p 'password123' -d 'domain.local'
nxc smb '10.10.11.76' -u 'admin' -H 'aad3b435b51404ee:e19ccf75ee54e06b' -d 'domain.local'
nxc smb '10.10.11.76' --use-kcache -d 'voleur.htb' --shares
Tags
Related commands
- Evil-WinRM Shell Windows Remote Management shell connection
- NetExec SMB Shares Enumerate SMB shares
- NetExec FTP Auth & Listing Validate FTP credentials and check anonymous access. Combine with --ls to list the root…
- NetExec RDP Auth Check Validate credentials against the RDP service (TCP/3389) without opening a graphical…
- NetExec SMB with Kerberos Auth Authenticate to SMB using a Kerberos ticket from a ccache file instead of NTLM. Required…
- NetExec SSH Auth & Spray Validate credentials against SSH. Supports password, key file, and spraying across…
- NetExec WinRM Auth Check Validate credentials against the WinRM (PowerShell Remoting) service. A successful login…